DigiForg3 SolutionsDigiForg3 Solutions

Trust

Trust & Security

How DigiForg3 Solutions (Pty) Ltd handles personal information, secures the systems we build, and responds to privacy and compliance requests.

Who is responsible

DigiForg3 Solutions (Pty) Ltd (registration 2025/689955/07), Johannesburg, South Africa. Privacy and security questions go to the Information Officer at support@digiforg3.co.za.

What we collect on this website

  • Contact enquiries: name, email, optional company details and your project brief.
  • Digital Readiness Assessment: your answers, plus contact details only if you provide them.
  • Waitlist and update signups: email address and the product you signed up for.
  • Operational logs required to keep the site available and secure.

We collect only what is needed for the purpose you submitted it for. We do not sell personal information, and we do not run third-party advertising trackers.

How that data is handled

  • Form submissions are validated server-side before anything is stored.
  • Records are stored in a managed PostgreSQL database with row-level security enabled.
  • Read access to submitted records is restricted; public roles can submit but not read.
  • Data is retained only as long as needed for the purpose, or as required by law.
  • Traffic to this site is served over HTTPS.

Security practices in the work we deliver

  • Secure-by-design: authentication and authorisation are treated as separate concerns.
  • Least privilege, with row-level security on user-facing tables.
  • Service-role and privileged operations stay server-side; secrets never ship to the browser.
  • Input validated on the server, not only in the interface.
  • Schema changes go through migrations, and destructive actions are confirmed.
  • Rate limiting and anti-spam protection on public submission endpoints.
  • Access tested against multiple roles before release.

These are the practices we apply. They are not a certification, and we do not claim any third-party audit or accreditation.

POPIA and your rights

Under South Africa's Protection of Personal Information Act you may request access to, correction of, or deletion of the personal information we hold, object to processing where applicable, and complain to the Information Regulator of South Africa. See the POPIA information page for detail, and the PAIA manual for formal access requests.

Reporting a vulnerability

If you believe you have found a security issue in this website or in a DigiForg3 product, email support@digiforg3.co.za with the affected URL or product, a description, and reproduction steps. Please do not publicly disclose the issue while we investigate, and do not access or modify data that is not yours. We acknowledge reports and keep you updated on progress.

Compliance and data requests

Send privacy, POPIA, PAIA, data-deletion and due-diligence requests to support@digiforg3.co.za. Include enough detail for us to identify the records concerned. Requests are handled within statutory timeframes.

Related pages

Compliance

Need our security or data-handling detail for a review?

Email support@digiforg3.co.za or send the request through the contact form and we will respond with the detail your process requires.